{"id":"CVE-2026-21366","published":"2026-08-04T16:16:22.780","lastModified":"2026-08-06T18:33:50.390","description":"Memory corruption while processing a packet with a size close to the maximum allowed value.","cvssScore":7.8,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwes":["CWE-190"],"vendors":["qualcomm"],"products":["lemans au lgit firmware","lemans au lgit","lemansau firmware","lemansau","qam8255p firmware","qam8255p","qam8295p firmware","qam8295p","qam8620p firmware","qam8620p","qamsrv1h firmware","qamsrv1h"],"references":[{"url":"https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2026-bulletin.html","tags":["Vendor Advisory"]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"The flaw involves memory corruption due to improper handling of packet sizes near the maximum limit, potentially leading to arbitrary code execution.","exploitability":"Exploitation requires precise control over packet size and format, making it moderately difficult but feasible with detailed knowledge of the affected firmware.","blast_radius":"If exploited, this vulnerability could lead to full system compromise affecting devices using these firmwares in critical infrastructure or consumer electronics.","remediation":"Update all affected firmware to the latest versions immediately to mitigate the risk of memory corruption and potential code execution.","tags":["memory-corruption","firmware-update","security-bulletin"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-08-11T06:51:32.263Z"}}